CVE

Id
10301  
CVE No.
CVE-2004-1874  
Status
Candidate  
Description
Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms.  
Phase
Assigned (20050504)  
Votes
None (candidate not yet proposed)  
Comments